package com.z.controller;

import org.apache.shiro.authz.annotation.RequiresPermissions;
import org.apache.shiro.authz.annotation.RequiresRoles;
import org.springframework.stereotype.Controller;
import org.springframework.web.bind.annotation.RequestMapping;

@Controller
public class OrderController {
    @RequestMapping("save")
    @RequiresRoles(value={"user","admin"})
    @RequiresPermissions("user:update:01")
    public String save(){
        System.out.println("进入方法");
        return "redirect:/index.jsp";
    }
}
